Skip to content

CI: scope GITHUB_TOKEN permissions, bump actions/checkout to v7 - #244

Merged
smnorris merged 1 commit into
mainfrom
ci-tidy
Aug 17, 2026
Merged

CI: scope GITHUB_TOKEN permissions, bump actions/checkout to v7#244
smnorris merged 1 commit into
mainfrom
ci-tidy

Conversation

@smnorris

Copy link
Copy Markdown
Collaborator

tidy up ci warnings

Add an explicit contents: read permissions block to tests.yml
(workflow-level) and release.yml's build job (matching the file's
existing per-job scoping pattern for publish-to-pypi/github-release),
per the code scanning alert at
https://github.com/bcgov/bcdata_py/security/code-scanning/4.

Also bump actions/checkout from v4 to v7 (latest) in both files.

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
@smnorris
smnorris merged commit 1e90e98 into main Aug 17, 2026
5 checks passed
@smnorris
smnorris deleted the ci-tidy branch August 17, 2026 23:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant